Vulnerabilities (CVE)

Filtered by vendor Seeds Subscribe
Filtered by product Acmailer
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-2971 1 Seeds 1 Acmailer 2024-02-04 5.5 MEDIUM N/A
Directory traversal vulnerability in Seeds acmailer before 3.8.18 and 3.9.x before 3.9.12 Beta allows remote authenticated users to delete arbitrary files via a crafted string.
CVE-2016-1142 1 Seeds 1 Acmailer 2024-02-04 9.0 HIGH 9.1 CRITICAL
Seeds acmailer before 3.8.21 and 3.9.x before 3.9.15 Beta allows remote authenticated users to execute arbitrary OS commands via unspecified vectors.
CVE-2014-3896 1 Seeds 1 Acmailer 2024-02-04 6.8 MEDIUM N/A
Multiple cross-site request forgery (CSRF) vulnerabilities in CGI programs in Seeds acmailer before 3.8.17 and 3.9.x before 3.9.10 Beta allow remote attackers to hijack the authentication of arbitrary users for requests that modify or delete data, as demonstrated by modifying data affecting authorization.